Vulnerabilities > CVE-2012-0904 - Resource Management Errors vulnerability in Videolan VLC Media Player 1.1.11

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
videolan
CWE-399
exploit available

Summary

VLC media player 1.1.11 allows remote attackers to cause a denial of service (crash) via a long string in an amr file.

Vulnerable Configurations

Part Description Count
Application
Videolan
1

Common Weakness Enumeration (CWE)

Exploit-Db

descriptionVLC Media Player 1.1.11 - (.amr) Denial of Service PoC. CVE-2012-0904. Dos exploit for windows platform
fileexploits/windows/dos/18309.pl
idEDB-ID:18309
last seen2016-02-02
modified2012-01-04
platformwindows
port
published2012-01-04
reporterFabi@habsec
sourcehttps://www.exploit-db.com/download/18309/
titleVLC Media Player 1.1.11 - .amr Denial of Service PoC
typedos

Oval

accepted2012-11-19T04:00:09.347-05:00
classvulnerability
contributors
  • nameShane Shaffer
    organizationG2, Inc.
  • nameShane Shaffer
    organizationG2, Inc.
definition_extensions
commentVLC media player is installed
ovaloval:org.mitre.oval:def:11821
descriptionVLC media player 1.1.11 allows remote attackers to cause a denial of service (crash) via a long string in an amr file.
familywindows
idoval:org.mitre.oval:def:14327
statusaccepted
submitted2012-01-24T15:20:33.178-04:00
titleRemote Denial of Service in VideoLAN VLC Media Player 1.1.11
version7